US9960952B2ActiveUtilityA1

Proactive fault detection and diagnostics for networked node transaction events

Assignee: CA INCPriority: Mar 17, 2016Filed: Mar 17, 2016Granted: May 1, 2018
Est. expiryMar 17, 2036(~9.6 yrs left)· nominal 20-yr term from priority
H04L 41/069H04L 41/065H04L 67/22H04L 67/535
80
PatentIndex Score
6
Cited by
14
References
15
Claims

Abstract

Techniques for managing networked node transactions are disclosed. In an embodiment, a fingerprint generator determines multiple classifier digital fingerprints that each comprise a bit sequence associated with a respective result classifier. The fingerprint generator receives transaction event entries that contain message text associated with a transaction between two or more nodes. The fingerprint generator generates a digital fingerprint for each of the transaction event entries. Each of the generated digital fingerprints comprises a bit sequence that is associated with an identity of at least one of the two or more nodes, and generating each of the fingerprints includes, for each bit position in the fingerprint bit sequence, determining whether the message text includes a specified text pattern and setting the bit position value based on the determination of whether the message text includes the specified text pattern. An event classifier groups each digital fingerprint into one or more event classification sets that each correspond to one of the result classifiers based, at least in part, on pattern matching the generated digital fingerprint with the classifier digital fingerprints.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
       1. A method for managing networked node transactions, said method comprising:
 generating, by a fingerprint generator, multiple classifier digital fingerprints, wherein each of the classifier digital fingerprints comprises a bit sequence, recorded in association with a respective result classifier; 
 generating, by a transaction processor, transaction event entries from network messages between nodes, wherein the transaction event entries contain message text associated with a transaction between two or more nodes; 
 generating, by the fingerprint generator, a digital fingerprint, from each of the transaction event entries, wherein each of the generated digital fingerprints comprises a bit sequence that is associated with an identity of at least one of the two or more nodes, and wherein said generating a digital fingerprint includes, for each bit position in the bit sequence, determining whether the message text includes a specified text pattern; and 
 setting the bit position value based on the determination of whether the message text includes the specified text pattern; and 
 for each of the generated digital fingerprints, grouping the generated digital fingerprint into one or more event classification sets that each correspond to one of the result classifiers based, at least in part, on pattern matching the generated digital fingerprint with the classifier digital fingerprints, wherein the one or more event classification sets includes a fault classification set; 
 determining a prospective fault condition for one of the two or more nodes based on the fault classification set; 
 in response to determining the fault condition, reading a profile data record that associates the identity of one of the two of more nodes with service domain data; 
 determining a service domain impact scope based on, the service domain data and transaction data contained in transaction event entries corresponding to the digital fingerprints grouped in the fault classification set; and 
 issuing an alert to at least one of the two or more nodes based, at least in part, on the service domain impact scope. 
 
     
     
       2. The method of  claim 1 , wherein the bit sequence of each of the generated digital fingerprints includes n bits, said generating a digital fingerprint for each of the transaction event entries comprising:
 applying each of n text pattern identification rules to message text contained in an transaction event entry to determine, for each of the text pattern identification rules, whether the message text includes a respective one of n specified text patterns; and 
 individually setting each of the n bits based on the determination of whether the message text includes the respective one of the n specified text patterns. 
 
     
     
       3. The method of  claim 1 , wherein said grouping the generated digital fingerprints into one or more event classification sets comprises:
 associating two or more of the generated digital fingerprints within a fault event set in response, at least in part, to,
 determining a correspondence among the two or more generated digital fingerprints based, at least in part, on the identities of the two or more nodes; and 
 for each of the two or more generated digital fingerprints,
 determining a pattern matching correlation between the generated digital fingerprint and the classifier digital fingerprints; and 
 determining a pattern matching correlation between the generated digital fingerprint and the other of the at least two generated digital fingerprints. 
 
 
 
     
     
       4. The method of  claim 3 , wherein the two or more generated digital fingerprints are generated from transaction event entries that include serial transaction data associated with the two or more nodes, said associating the two or more digital fingerprints into a fault event set further comprising:
 comparatively processing a series of the transaction event entries to determine an activity divergence event; and 
 in response to detecting an activity divergence event associated with a next transaction event entry, excluding a digital fingerprint generated for the next transaction event entry from the fault event set. 
 
     
     
       5. The method of  claim 4 , further comprising:
 generating diagnostic digital fingerprints for each the one or more event classification sets; and 
 determining a causal property for the fault event set based on regression processing of the associated digital fingerprints with respect to the diagnostic digital fingerprints. 
 
     
     
       6. One or more non-transitory more machine-readable media having program code for managing networked node transactions stored therein, the program code to:
 generate, by a fingerprint generator, multiple classifier digital fingerprints, wherein each of the classifier digital fingerprints comprises a bit sequence, recorded in association with a respective result classifier; 
 generate, by a transaction processor, transaction event entries from network messages between nodes, wherein the transaction event entries contain message text associated with a transaction between two or more nodes; 
 generate, by the fingerprint generator, a digital fingerprint, from each of the transaction event entries, wherein each of the generated digital fingerprints comprises a bit sequence that is associated with an identity of at least one of the two or more nodes, and wherein said generating a digital fingerprint includes, for each bit position in the bit sequence, determine whether the message text includes a specified text pattern; and 
 set the bit position value based on the determination of whether the message text includes the specified text pattern; and 
 for each of the generated digital fingerprints, group the generated digital fingerprint into one or more event classification sets that each correspond to one of the result classifiers based, at least in part, on pattern matching the generated digital fingerprint with the classifier digital fingerprints, wherein the one or more event classification sets includes a fault classification set; 
 determine a prospective fault condition for one of the two or more nodes based on the fault classification set; 
 in response to determining the fault condition, reading a profile data record that associates the identity of one of the two of more nodes with service domain data; 
 determine a service domain impact scope based on, the service domain data and transaction data contained in transaction event entries corresponding to the digital fingerprints grouped in the fault classification set; and 
 issue an alert to at least one of the two or more nodes based, at least in part, on the service domain impact scope. 
 
     
     
       7. The machine-readable media of  claim 6 , wherein the bit sequence of each of the generated digital fingerprints includes n bits, and wherein the program code to generate a digital fingerprint for each of the transaction event entries comprises program code to:
 apply each of n text pattern identification rules to message text contained in an transaction event entry to determine, for each of the text pattern identification rules, whether the message text includes a respective one of n specified text patterns; and 
 individually set each of the n bits based on the determination of whether the message text includes the respective one of the n specified text patterns. 
 
     
     
       8. The machine-readable media of  claim 6 , wherein the program code to group the generated digital fingerprints into one or more event classification sets comprises program code to:
 associate two or more of the generated digital fingerprints within a fault event set in response, at least in part, to,
 determining a correspondence among the two or more generated digital fingerprints based, at least in part, on the identities of the two or more nodes; and 
 for each of the two or more generated digital fingerprints,
 determining a pattern matching correlation between the generated digital fingerprint and the classifier digital fingerprints; and 
 determining a pattern matching correlation between the generated digital fingerprint and the other of the at least two generated digital fingerprints. 
 
 
 
     
     
       9. The machine-readable media of  claim 8 , wherein the two or more generated digital fingerprints are generated from transaction event entries that include serial transaction data associated with the two or more nodes, said program code to associate the two or more digital fingerprints into a fault event set further comprising program code to:
 comparatively process a series of the transaction event entries to determine an activity divergence event; and 
 in response to detecting an activity divergence event associated with a next transaction event entry, exclude a digital fingerprint generated for the next transaction event entry from the fault event set. 
 
     
     
       10. The machine-readable media of  claim 9 , further comprising program code to:
 generate diagnostic digital fingerprints for each the one or more event classification sets; and 
 determine a causal property for the fault event set based on regression processing of the associated digital fingerprints with respect to the diagnostic digital fingerprints. 
 
     
     
       11. An apparatus comprising:
 a processor; and 
 a machine-readable medium having program code executable by the processor to cause the apparatus to: 
 generate, by a fingerprint generator, multiple classifier digital fingerprints, wherein each of the classifier digital fingerprints comprises a bit sequence, recorded in association with a respective result classifier; 
 generate, by a transaction processor, transaction event entries from network messages between nodes, wherein the transaction event entries contain message text associated with a transaction between two or more nodes; 
 generate, by the fingerprint generator, a digital fingerprint, from each of the transaction event entries, wherein each of the generated digital fingerprints comprises a bit sequence that is associated with an identity of at least one of the two or more nodes, and wherein said generating a digital fingerprint includes, for each bit position in the bit sequence, determine whether the message text includes a specified text pattern; and 
 set the bit position value based on the determination of whether the message text includes the specified text pattern; and 
 for each of the generated digital fingerprints, group the generated digital fingerprint into one or more event classification sets that each correspond to one of the result classifiers based, at least in part, on pattern matching the generated digital fingerprint with the classifier digital fingerprints, wherein the one or more event classification sets includes a fault classification set; 
 determine a prospective fault condition for one of the two or more nodes based on the fault classification set; 
 in response to determining the fault condition, reading a profile data record that associates the identity of one of the two of more nodes with service domain data; 
 determine a service domain impact scope based on, the service domain data and transaction data contained in transaction event entries corresponding to the digital fingerprints grouped in the fault classification set; and 
 issue an alert to at least one of the two or more nodes based, at least in part, on the service domain impact scope. 
 
     
     
       12. The apparatus of  claim 11 , wherein the bit sequence of each of the generated digital fingerprints includes n bits, and wherein the program code comprises program code executable by the processor to cause the apparatus to:
 apply each of n text pattern identification rules to message text contained in an transaction event entry to determine, for each of the text pattern identification rules, whether the message text includes a respective one of n specified text patterns; and 
 individually set each of the n bits based on the determination of whether the message text includes the respective one of the n specified text patterns. 
 
     
     
       13. The apparatus of  claim 11 , wherein the program code comprises program code executable by the processor to cause the apparatus to:
 associate two or more of the generated digital fingerprints within a fault event set in response, at least in part, to,
 determining a correspondence among the two or more generated digital fingerprints based, at least in part, on the identities of the two or more nodes; and 
 for each of the two or more generated digital fingerprints,
 determining a pattern matching correlation between the generated digital fingerprint and the classifier digital fingerprints; and 
 determining a pattern matching correlation between the generated digital fingerprint and the other of the at least two generated digital fingerprints. 
 
 
 
     
     
       14. The apparatus of  claim 13 , wherein the two or more generated digital fingerprints are generated from transaction event entries that include serial transaction data associated with the two or more nodes, said program code comprising program code executable by the processor to cause the apparatus to:
 comparatively process a series of the transaction event entries to determine an activity divergence event; and 
 in response to detecting an activity divergence event associated with a next transaction event entry, exclude a digital fingerprint generated for the next transaction event entry from the fault event set. 
 
     
     
       15. The apparatus of  claim 14 , further comprising program code executable by the processor to cause the apparatus to:
 generate diagnostic digital fingerprints for each the one or more event classification sets; and 
 determine a causal property for the fault event set based on regression processing of the associated digital fingerprints with respect to the diagnostic digital fingerprints.

Join the waitlist — get patent alerts

Track US9960952B2 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.